# Open Source Components Code Volume Drag Down Application Security

**January 05, 2018**  
By [Matt Howard](/content/blog/author/matt-howard/index.html)

1 minute read time

[Jai Vijayan](https://www.linkedin.com/in/jaivijayan/) provides a [nice summary](https://www.darkreading.com/application-security/open-source-components-code-volume-drag-down-web-app-security-/d/d-id/1330744?) of the Imperva report, [The State of Web Application Vulnerabilities in 2017](https://www.imperva.com/blog/2017/12/the-state-of-web-application-vulnerabilities-in-2017/).

Among the findings...

- 212% = increase in number of new Web application vulnerabilities disclosed in 2017 compared to 2016
- 14,082 = number of new vulnerabilities discovered in web applications in 2017 vs. 6,615 in 2016.
- Security experts point to a handful of causes for the prevailing state of Web application security including:
  - Increasing use by developers of open source components to build applications.
  - Sheer volume of Web applications being developed and put into production.
  - Growing adoption of [DevOps](/content/resources/articles/what-is-devops/index.html), agile development, and CI/CD practices.

You can [read the full report](https://www.imperva.com/blog/2017/12/the-state-of-web-application-vulnerabilities-in-2017/) on the Imperva site.

Written by **Matt Howard**

Matt is a proven executive and entrepreneur with over 20 years experience developing high-growth software companies, at Sonatype, he leads corporate marketing, strategic partnering, and demand generation initiatives.

Tags

components, Open Source, report, Imperva
